Commit Graph

2094 Commits (3340cf529c7816ff7e70f049b2381afcc24dcfa7)

Author SHA1 Message Date
h00die d8f2d08058 finish up docs and 10 exploit 2018-09-10 21:08:30 -04:00
Jacob Robles 3d5da50b12
Land #10598, Store Credentials Found with PhpMyAdmin Password Extractor 2018-09-10 11:49:52 -05:00
h00die 589fb4bf3b first try at ueb mix 2018-09-09 22:41:01 -04:00
Wei Chen 718aaca0f4
Land #10546, Add Apache Struts exploit: CVE-2018-11776 2018-09-07 14:54:23 -05:00
Brent Cook 9abb6aebb3 Fixup reverse_ord_tcp docs 2018-09-07 11:47:14 -05:00
Shelby Pace 18ffd36409
storing config file, changed regex 2018-09-07 08:13:10 -05:00
Erin Bleiweiss 41d12166fd
Use a string hash key for documentation 2018-09-06 15:57:52 -05:00
Shelby Pace 36d125e1a8
modified line in scenarios output 2018-09-06 12:15:04 -05:00
Shelby Pace 50df5e386a
modified doc to reflect new output 2018-09-06 12:11:14 -05:00
William Vu f34146b288 Add module doc 2018-09-05 19:57:15 -05:00
Brent Cook d25aad571f
Land #10474, add documention for windows/shell/reverse_ord_tcp 2018-09-05 09:04:47 -05:00
Erin Bleiweiss b1479ec350
Update swagger docs to be compliant with new notes field 2018-08-31 16:53:59 -05:00
Wei Chen 34944ff5be
Land #10568, Update weblogic module docs 2018-08-31 14:05:46 -05:00
asoto-r7 da7a29f715
Documentation update 2018-08-31 13:57:41 -05:00
Wei Chen 0dea5fcfd9
Land #10565, Add Dolibarr ERP/CRM Auxiliary Module 2018-08-31 13:47:46 -05:00
Jacob Robles e49435a766
Update weblogic module docs
Update the module docs to match the new name
of the module.
2018-08-31 06:00:41 -05:00
Shelby Pace 628ea736a0
delete newline 2018-08-30 15:54:04 -05:00
Shelby Pace d0cc05b074
added documentation 2018-08-30 15:28:52 -05:00
Shelby Pace a9376266bc
Land #10484, Add PhpMyAdmin password extractor 2018-08-30 12:16:17 -05:00
Shelby Pace 6ec8522786
Land #10482, Add Network Manager VPNC Privesc 2018-08-30 10:46:54 -05:00
Jacob Robles 9d3e1c1942
Land #10540, weblogic_deserialize, add check method and linux target 2018-08-30 06:08:03 -05:00
Jacob Robles 953bafc7e7
Land #10545, foxit fix generated strings, update doc 2018-08-30 05:55:44 -05:00
Jacob Robles d5ad683ba6
More doc updates 2018-08-29 10:59:36 -05:00
Jacob Robles 88c908665d
Update documentation 2018-08-29 06:24:30 -05:00
Jacob Robles 086ec5bdfb
Fix generated strings in pdf 2018-08-29 06:24:20 -05:00
asoto-r7 b373dcc5d4
First draft of module and documentation for struts_namespace_rce against CVE-2018-11776 2018-08-28 16:53:26 -05:00
bwatters-r7 f6b0e720e4
Add documentation for peinjector 2018-08-28 14:02:34 -05:00
Jacob Robles 94e8cdac37
Move files to correct location 2018-08-28 12:38:54 -05:00
Jacob Robles 49c5a91fa7
Add linux target to weblogic_deserialize module 2018-08-28 11:51:04 -05:00
William Vu 672dbb7acb
Land #9364, HP PJL/SNMP CVE-2017-2741 exploit
Finally!
2018-08-23 22:47:09 -05:00
h00die 8213c21dc9
Land #10467 documentation for postgresql hashdump 2018-08-23 21:35:05 -04:00
h00die a866bdd09d slight syntax updates to md 2018-08-23 21:34:48 -04:00
h00die 1585eff29f
Land #10466 docs for postgres_version 2018-08-23 21:10:34 -04:00
h00die 3024725122 slight syntax updates to md 2018-08-23 21:09:52 -04:00
h00die b8ce6782d9
Land #10517 updated docs for CloudMe Sync 2018-08-23 20:54:01 -04:00
Wei Chen 2193dd662d
Land #10504, add Foxit Reader UAF Module and Docs 2018-08-23 18:56:07 -05:00
Shelby Pace 5f9432ed6a
added rca to cloudme doc 2018-08-23 16:12:13 -05:00
Matthew Kienow 7a534707ab
Add note about unauthenticated telnetd service 2018-08-23 16:16:47 -04:00
Matthew Kienow ecc6c473d8
Add note about unauthenticated telnetd service 2018-08-23 15:50:41 -04:00
Matthew Kienow ee6bf7a77c
Fix documentation markdown table format 2018-08-23 15:23:41 -04:00
Matthew Kienow 18712c25cd
Add uname to module documentation scenario 2018-08-23 15:23:41 -04:00
Matthew Kienow 77b77287cc
Add module and payload documentation 2018-08-23 15:23:40 -04:00
Mumbai 46b45f379b Add documentation for MS16 Reflection DCOM->RPC 2018-08-21 11:27:07 -04:00
Jacob Robles fd6880d0d0
Add Foxit Reader UAF Module and Docs 2018-08-21 08:21:51 -05:00
William Vu 06582a00a0 Add module doc for ssh_enumusers
And update description in module.
2018-08-20 19:26:51 -05:00
Tim W b8b48fd37a
Land #10313, add linux autostart persistence module 2018-08-20 18:17:50 +08:00
Tim W 865898cba7 minor fixes 2018-08-20 17:51:41 +08:00
Dhiraj Mishra 3cebfe4e14
Documentation 2018-08-19 23:56:00 +05:30
Brendan Coles f09148d843 Add documentation 2018-08-19 08:20:41 +00:00
Tim W ac71bc86ee
Land #10320, add module for persistence in /etc/rc.local 2018-08-19 15:30:50 +08:00
Tim W e38775b504 minor tweaks 2018-08-19 15:27:04 +08:00
Arpit Agrawal a673ca1bc4
Update reverse_ord_tcp.md 2018-08-17 19:59:39 +05:30
agrawalarpit14 59d977edfa
Documentation on windows/shell/reverse_ord_tcp
Part of Issue #7142
2018-08-17 16:22:39 +05:30
Eliott Teissonniere a22acf3f3e Document autostart module 2018-08-17 14:24:28 +08:00
William Vu c24ceb9483 Move and update marked_redos module doc 2018-08-16 15:12:36 -05:00
William Vu 5096eee2ec
Land #10120, npm "marked" ReDoS module 2018-08-16 15:01:12 -05:00
Kevin Kirsche 809a15541c Create documentation for PostgreSQL hash dumper
Documentation on auxiliary/scanner/postgres/postgres_hashdump

Part of issue #8296

Please see and following installation and exploitation steps using your machine. Please replace IP's where appropriate depending on if you are attacking your local machine or another machine on your network.
2018-08-16 08:39:39 -04:00
Kevin Kirsche 45cb0a9f6e
Create documentation for PostgreSQL version scanner
Documentation on auxiliary/scanner/postgres/postgres_version

Part of issue #8296

## Verification
Please see and following installation and exploitation steps using your machine. Please replace IP's where appropriate depending on if you are attacking your local machine or another machine on your network.
2018-08-16 08:02:42 -04:00
James Barnett becd42553a
Land #10462, Add API documentation for users and auth endpoints 2018-08-15 17:10:26 -05:00
Erin Bleiweiss 4b42e7633c Add examples for username and password properties 2018-08-15 16:34:11 -05:00
Erin Bleiweiss a70c5f0c37 Replace strings with reusable constants 2018-08-15 15:26:35 -05:00
Erin Bleiweiss c19dc52573 Remove extraneous lines from a bad copy/paste 2018-08-15 15:03:27 -05:00
h00die 61dfd75663
Land #10457 docs for elasticsearch indices_enum 2018-08-14 20:55:15 -04:00
h00die a620958b97 update elasticsearch doc format 2018-08-14 20:53:18 -04:00
h00die 44fd9c63e0 doc format update 2018-08-14 20:39:04 -04:00
Erin Bleiweiss 2abc49641c Add 401 responses for all endpoints 2018-08-14 13:35:59 -05:00
Erin Bleiweiss 66b761db15 Add doc for user operations 2018-08-14 13:19:56 -05:00
Erin Bleiweiss f7a0b201d7 Add authorization support for auth/bearer tokens 2018-08-14 11:51:15 -05:00
Kevin Kirsche d273eb3914
Create elasticsearch indices_enum documentation
Documentation on auxiliary/scanner/elasticsearch/indices_enum

Part of issue #8296
2018-08-13 22:14:03 -04:00
Jacob Robles ddebdea8c1
Update cgit doc 2018-08-13 16:45:13 -05:00
Jacob Robles 85a137e0a0
Land #10420, cgit < 1.2.1 Directory Traversal 2018-08-13 16:25:23 -05:00
Jacob Robles 5a3d040d71
Fix module, Add documentation 2018-08-13 15:48:21 -05:00
Shelby Pace ce8cbd64d4
Land #10404, Add Path Traversal Oracle GlassFish 2018-08-13 11:15:26 -05:00
Jacob Robles 66e5685ed2
Moved to exploit/windows 2018-08-09 11:35:14 -05:00
Jacob Robles 228bd4c3ab
Add weblogic_deserialize module CVE-2018-2628 2018-08-08 17:55:41 -05:00
h00die d299831efe updated windows udf files and documentation 2018-08-07 14:50:47 -04:00
Dhiraj Mishra 22e3238dbc
Updating Docs 2018-08-04 19:10:08 +05:30
Brent Cook 78f66986e9
Land #10386, Add IEC104 client module 2018-08-04 07:43:15 -05:00
Brent Cook 919da41aab
Land #9692, Add DoS module for Siemens Siprotec 4 2018-08-04 07:20:57 -05:00
Dhiraj Mishra c6eb4994c1
Updating docs 2018-08-04 13:27:27 +05:30
Brendan Coles 1c82592882
Land #10358, Add Dicoogle PACS Directory Traversal scanner module 2018-08-04 05:31:16 +00:00
h00die e5dcfa62c9 remove encoding and escaping 2018-08-03 20:23:33 -04:00
Wei Chen 0785d59146
Land #10412, Add Cisco directory traversal auxiliary module 2018-08-02 16:44:59 -05:00
Tim W 8785ec21b6
Land #9884, add linux ufo priv esc module 2018-08-02 17:53:36 +08:00
Shelby Pace bbe6206026
documentation for cisco dir traversal module 2018-08-01 13:04:09 -05:00
James Barnett 888dc43a7e
Land #10348, Add REST API for module queries
This PR also updates the local module queries with more query parameters
and logic.
2018-07-31 16:06:31 -05:00
Matthew Kienow 5308c5eca5
Land #10377, update REST API JSON format 2018-07-31 16:59:05 -04:00
Erin Bleiweiss 58b3f63c1a Update to reflect new JSON models 2018-07-31 15:57:26 -05:00
James Barnett 458fb36ec8
Update API docs for GET resource/ID 2018-07-31 15:43:57 -05:00
Erin Bleiweiss 3e8efea57a Merge branch 'conform_to_api_standards' into exploit-query
Prepare for new JSON format.
2018-07-31 14:48:37 -05:00
Erin Bleiweiss 3291931955 Merge branch 'upstream-master' into exploit-query 2018-07-31 11:51:14 -05:00
Dhiraj Mishra bdd2ceba2b
Documentation 2018-07-31 18:07:57 +05:30
Wei Chen bcfb3d099b
Land #10255, Adding Micro Focus Secure Messaging Gateway RCE 2018-07-30 21:07:02 -05:00
Wei Chen 7d08c71722 Update documentation about how to make it vulnerable again 2018-07-30 21:05:46 -05:00
William Vu 129fd44350
Land #10305, SonicWall XML-RPC RCE 2018-07-30 14:14:26 -05:00
William Vu 51ffe7abba Add header to doc 2018-07-30 14:07:54 -05:00
Jacob Robles 952ab801e8
Land #10060, vTiger CRM v6.3.0 Upload RCE 2018-07-30 12:32:24 -05:00
Jacob Robles fe9315dc89
Update module, Add documentation 2018-07-30 12:11:08 -05:00
Shelby Pace d58785f959
Land #10247, add WordPress Arbitrary File Deletion 2018-07-30 09:05:23 -05:00
h00die 53cca07442 bcoles suggestions 2018-07-29 10:31:01 -04:00